Current-Users archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Any recent changes for ipfilter/ipnat?



paul%whooppee.com@localhost wrote:

> Here's my network topology:
> 
>     (the Internet)   66.92.189.133       192.168.2.250   (private net)
>     ------------------------------       -----------------------------
>                                  |       |
>                              re0 |       | tlp0
>                             -------------------
>                             |                 |
>                             | gateway machine |
>                             |                 |
>                             -------------------
> 
> I have an empty /etc/ipf.conf (it's only there because I need one to 
> start ipf, which is required to run ipnat).  Here's my /etc/ipnet.conf
> 
>       {102} cat /etc/ipnat.conf
>       map tlp0 192.168.2.0/25 -> 0/32 proxy port ftp ftp/tcp
>       map tlp0 192.168.2.0/25 -> 0/32 portmap tcp/udp 40000:60000
>       map tlp0 192.168.2.0/25 -> 0/32

Shouldn't you specify re0 in these entries for
outgoing packets from hosts on tlp0 to the Internet via re0?
---
Izumi Tsutsui


Home | Main Index | Thread Index | Old Index